Hi Stephen, this looks strange too me - can you check if there are any hidden chars at the end of the validity speciifcation? I tried with all variants and it "works for me".
> On a related, but separate question - is there a way to configure the > profile to set the “notafter” date to be the same as the end-date of > the current CA certificate? > It is, but it needs some not so trivial modifications to the workflows - find the correct signer, load its notafter date and set it as "notafter" in the context will do the trick. Oliver -- Protect your environment - close windows and adopt a penguin!
_______________________________________________ OpenXPKI-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openxpki-users
